Page MenuHomeDevCentral

Create restic users and generate S3 credentials
ClosedPublic

Authored by dereckson on Sat, Sep 5, 22:44.
Tags
None
Referenced Files
F52790278: D4206.id11030.diff
Sun, Oct 4, 20:50
F52740195: D4206.id11061.diff
Sun, Oct 4, 10:02
Unknown Object (File)
Sat, Oct 3, 12:42
Unknown Object (File)
Thu, Oct 1, 08:47
Unknown Object (File)
Wed, Sep 30, 17:46
Unknown Object (File)
Wed, Sep 30, 09:01
Unknown Object (File)
Wed, Sep 30, 09:01
Unknown Object (File)
Tue, Sep 29, 20:48
Subscribers
None

Details

Summary

We create the accounts per container and server:

  • for -amaris, every server
  • for -darak, WindRiver as experimental test
  • for -vakor, Complector

Those 13 accounts are separate OVH project users,
with separate credentials stored in Vault.

-amaris accounts are intended to be included in by-server Vault policy,
-vakor account can use a approle, as an unprivileged account can do this.

Diff Detail

Repository
rOPS Nasqueron Operations
Lint
Lint Passed
Unit
No Test Coverage
Branch
ovh-backups-restic-users
Build Status
Buildable 6881
Build 7169: arc lint + arc unit

Event Timeline

dereckson created this revision.

Rebased. Remove version to be idempotent.

Deployed and idempotent.

This revision is now accepted and ready to land.Sun, Sep 13, 23:20